In our environment, we have noticed that MIT krb5 1.3.1 fails to use DNS to find KDCs if there are too many entries. We have about 75 AD DCs. Has anyone else noticed this issue? Thanks, -- Roland Dowdeswell http://www.Imrryr.ORG/~elric/